First published: Tue Jul 14 2020(Updated: )
A remote code execution vulnerability exists in Microsoft Word software when it fails to properly handle objects in memory, aka 'Microsoft Word Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1446, CVE-2020-1447.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office | =2019 | |
Microsoft Office Online Server | =1.0 | |
Microsoft Office Web Apps | =2013-sp1 | |
Microsoft SharePoint Enterprise Server | =2016 | |
Microsoft SharePoint Server | =2019 | |
Microsoft Word | =2013-sp1 | |
Microsoft Word | =2016 | |
Microsoft Word Rt | =2013-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-1448 is a remote code execution vulnerability in Microsoft Word software.
CVE-2020-1448 allows attackers to execute code remotely in Microsoft Word software.
CVE-2020-1448 has a severity level of 8.8 (high).
Microsoft Office 2019, 2013 (SP1), and 2016 are affected by CVE-2020-1448.
Yes, Microsoft has released a security update to fix CVE-2020-1448. It is recommended to install the latest updates.